Changelog for
mod_auth_openidc-2.4.9.1-1.el9.x86_64.rpm :
* Fri Jul 30 2021 Jakub Hrozek
- 2.4.9.1-1- Resolves: rhbz#1987223 - CVE-2021-32792 mod_auth_openidc: XSS when using OIDCPreservePost On [rhel-9.0]- Resolves: rhbz#1987217 - CVE-2021-32791 mod_auth_openidc: hardcoded static IV and AAD with a reused key in AES GCM encryption [rhel-9.0]- Resolves: rhbz#1987204 - CVE-2021-32786 mod_auth_openidc: open redirect in oidc_validate_redirect_url() [rhel-9.0]